circlemint[.]us
Resumo das evidências
Analysis of circlemint.us as of July 29, 2026, indicates a high-risk crypto drainer domain actively targeting users. The domain is flagged by 15 of 91 security vendors on VirusTotal, a detection rate that exceeds typical false-positive thresholds for malicious infrastructure. It appears on three independent security blocklists and is explicitly blocked by PhishDestroy, MetaMask, and SEAL, all of which specialize in cryptocurrency-related threats. Google Safe Browsing classifies the domain under social engineering, further corroborating its role in deceptive activity.
No registrar, hosting provider, or autonomous system details are currently available in the intelligence feed, limiting attribution to specific infrastructure. The domain's content has not been fully analyzed, so the exact mechanics of the drainer—such as whether it uses wallet signature spoofing, fake token approvals, or malicious smart contracts—remain unconfirmed. However, the convergence of vendor detections and specialized blocklist entries strongly suggests it operates as a crypto drainer rather than a generic phishing or scam site. Defenders should treat circlemint.us as an active threat.
Immediate actions include blocking the domain at the DNS and proxy layers, alerting users to its presence in logs or web traffic, and monitoring for wallet interactions associated with its unique seed (c2c216). If internal telemetry shows connections to this domain, isolate affected endpoints and review transaction histories for unauthorized cryptocurrency transfers. Given the domain's persistence on blocklists and vendor detections, it is unlikely to be a transient threat and may reappear under different names or subdomains. No evidence suggests this domain is safe for any user interaction.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
Linha do tempo de detecção
-
Google Safe Browsing
0 → 1
-
Status do domínio
Acessível → Inacessível
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo